First published: Mon Feb 21 2022(Updated: )
** DISPUTED ** Plesk CMS 18.0.37 is affected by an insecure permissions vulnerability that allows privilege Escalation from user to admin rights. OTE: the vendor states that this is only a site-specific problem on websites of one or more Plesk users.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Plesk Obsidian | =18.0.37 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-45008 is an insecure permissions vulnerability in Plesk CMS 18.0.37 that allows privilege escalation from user to admin rights.
CVE-2021-45008 affects Plesk CMS 18.0.37 by allowing privilege escalation from user to admin rights.
CVE-2021-45008 has a severity rating of 8.8, which is considered high.
To fix the insecure permissions vulnerability in Plesk CMS 18.0.37, you should update to the latest version provided by the vendor.
The vendor states that CVE-2021-45008 is only a site-specific problem on websites of one or more Plesk users.